last sync: 2024-Nov-25 18:54:24 UTC

Deploy SQL Database Vulnerability Assessments

Azure Landing Zones (ALZ) Policy definition

Source Repository Azure Landing Zones (ALZ) GitHub
JSON Deploy-Sql-vulnerabilityAssessments_20230706
Deploy policy Deploy-Sql-vulnerabilityAssessments_20230706 (1.0.0) to Azure
Display name Deploy SQL Database Vulnerability Assessments
Id Deploy-Sql-vulnerabilityAssessments_20230706
Version 1.0.0
Details on versioning
Category SQL
Description Deploy SQL Database Vulnerability Assessments when it does not exist in the deployment, and save results to the storage account specified in the parameters.
Mode Indexed
Type Custom Azure Landing Zones (ALZ)
Preview False
Deprecated False
Replaces Policy This ALZ Policy definition replaces [Deprecated]: Deploy SQL Database vulnerability Assessments (Deploy-Sql-vulnerabilityAssessments)
More information on Azure Landing Zones deprecated Policy definitions
Effect Default
DeployIfNotExists
Allowed
DeployIfNotExists, Disabled
RBAC role(s)
Role Name Role Id
SQL Security Manager 056cd41c-7e88-42e1-933e-88ba6a50c9c3
Monitoring Contributor 749f88d5-cbae-40b8-bcfc-e573ddc772fa
Storage Account Contributor 17d1049b-9a84-46fb-8f53-869881c3d3ab
Rule aliases THEN-ExistenceCondition (2)
Alias Namespace ResourceType Path PathIsDefault DefaultPath Modifiable
Microsoft.Sql/servers/databases/vulnerabilityAssessments/recurringScans.emails[*] Microsoft.Sql servers/databases/vulnerabilityAssessments properties.recurringScans.emails[*] True False
Microsoft.Sql/servers/databases/vulnerabilityAssessments/recurringScans.isEnabled Microsoft.Sql servers/databases/vulnerabilityAssessments properties.recurringScans.isEnabled True False
Rule resource types IF (1)
Microsoft.Sql/servers/databases
THEN-Deployment (1)
Microsoft.Sql/servers/databases/vulnerabilityAssessments
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State
Deploy SQL Database built-in SQL security configuration Deploy-Sql-Security_20240529 SQL GA
History
Date/Time (UTC ymd) (i) Change type Change detail
2023-07-07 17:55:09 add Deploy-Sql-vulnerabilityAssessments_20230706
Replaces Policy: [Deprecated]: Deploy SQL Database vulnerability Assessments (Deploy-Sql-vulnerabilityAssessments)
JSON compare
compare mode: version left: version right:
JSON
EPAC
Deploy policy Deploy-Sql-vulnerabilityAssessments_20230706 (1.0.0) to Azure